Rosetta Intel
Datasets/KEV CatalogThreat Actors
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1676 entries·352 Ransomware·Updated 2026-08-25

CWE-94 · Code injectionDefinition on MITRE ↗Clear

70 results·Page 1 / 2

CVE-2026-60004
2026-08-25
Gitea Code Injection Vulnerability
Gitea

Gitea contains a code injection vulnerability that allows an attacker with repository write access to send a malicious patch to the diffpatch API endpoint to plant an executable Git hook and run shell commands as the Gitea service account.

CWE-94 · Code injection
Refsgithub.comBOD 26-04Forensics Triage Requirementsnvd.nist.gov
Federal remediation due 2026-08-28
CVE-2026-72530
2026-08-20
TrueConf Server Code Injection Vulnerability
TrueConf

TrueConf Server contains a code injection vulnerability that could allow an unauthorized remote attacker with network access via port 4307/TCP to use a specially crafted script to break out of the isolated environment and execute arbitrary code on the host system.

CWE-94 · Code injection
Refstrueconf.comics-cert.kaspersky.comBOD 26-04Forensics Triage Requirementsnvd.nist.gov
Federal remediation due 2026-09-03
CVE-2025-62593
2026-08-17
Ray-Project Ray Code Injection Vulnerability
Ray-Project

Ray-Project Ray contains a code injection vulnerability that could allow remote code execution. Developers using Ray as a development tool may be exposed to this vulnerability exploitable through Firefox and Safari.

CWE-94 · Code injectionCWE-352 · Cross-site request forgery
Refsgithub.comgithub.comBOD 26-04Forensics Triage Requirementsnvd.nist.gov
Federal remediation due 2026-08-20
CVE-2026-9198
2026-08-04
IBM Langflow Code Injection Vulnerability
IBM

Langflow contains a code injection vulnerability that allows unauthenticated attackers to achieve full remote code execution on default Langflow deployments.

CWE-94 · Code injection
Refsibm.comBOD 26-04Forensics Triage Requirementsnvd.nist.gov
Federal remediation due 2026-08-07
CVE-2026-15410
2026-07-14
SonicWall SMA1000 Appliances Code Injection VulnerabilityRansomware
SonicWall

SonicWall SMA1000 Appliances contain a code injection vulnerability which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands.

CWE-94 · Code injection
Refspsirt.global.sonicwall.comBOD 26-04Forensics Triage Requirementsnvd.nist.gov
Federal remediation due 2026-07-17
CVE-2025-67038
2026-06-23
Lantronix EDS5000 Code Injection Vulnerability
Lantronix

Lantronix EDS5000 contains a code injection vulnerability that could allow attackers to inject arbitrary OS commands into the username parameter. Injected commands are executed with root privileges.

CWE-78 · OS command injectionCWE-94 · Code injection
Refsltrxdev.atlassian.netBOD 26-04Forensics Triage Requirementsnvd.nist.gov
Federal remediation due 2026-06-26
CVE-2008-4250
2026-05-20
Microsoft Windows Buffer Overflow Vulnerability
Microsoft

Microsoft Windows contains a buffer overflow vulnerability in the Windows Server Service that allows remote attackers to execute arbitrary code via a crafted RPC request that triggers an overflow during path canonicalization.

CWE-94 · Code injection
Refslearn.microsoft.comnvd.nist.gov
Federal remediation due 2026-06-03
CVE-2026-34197
2026-04-16
Apache ActiveMQ Improper Input Validation Vulnerability
Apache

Apache ActiveMQ contains an improper input validation vulnerability that allows for code injection.

CWE-20 · Improper input validationCWE-94 · Code injection
Refsactivemq.apache.orgnvd.nist.gov
Federal remediation due 2026-04-30
CVE-2009-0238
2026-04-14
Microsoft Office Remote Code Execution
Microsoft

Microsoft Office Excel contains a remote code execution vulnerability that could allow an attacker to take complete control of an affected system if a user opens a specially crafted Excel file that includes a malformed object.

CWE-94 · Code injection
Refslearn.microsoft.comnvd.nist.gov
Federal remediation due 2026-04-28
CVE-2026-1340
2026-04-08
Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability
Ivanti

Ivanti Endpoint Manager Mobile (EPMM) contains a code injection vulnerability that could allow attackers to achieve unauthenticated remote code execution.

CWE-94 · Code injection
RefsPlease adhere to Ivanti's guidelines to assess exposure and mitigate risks. Check for signs of potential compromise on all internet accessible Ivanti products affected by this vulnerability. Apply any final mitigations provided by the vendor as soon as possible. For more information please seesupport.mobileiron.comsupport.mobileiron.comnvd.nist.gov
Federal remediation due 2026-04-11
CVE-2026-33017
2026-03-25
Langflow Code Injection Vulnerability
Langflow

Langflow contains a code injection vulnerability that could allow building public flows without requiring authentication.

CWE-94 · Code injectionCWE-95CWE-306 · Missing authentication
Refsgithub.comnvd.nist.gov
Federal remediation due 2026-04-08
CVE-2025-54068
2026-03-20
Laravel Livewire Code Injection Vulnerability
Laravel

Laravel Livewire contain a code injection vulnerability that could allow unauthenticated attackers to achieve remote command execution in specific scenarios.

CWE-94 · Code injection
Refsgithub.comgithub.comnvd.nist.gov
Federal remediation due 2026-04-03
CVE-2025-32432
2026-03-20
Craft CMS Code Injection Vulnerability
Craft CMS

Craft CMS contains a code injection vulnerability that allows a remote attacker to execute arbitrary code.

CWE-94 · Code injection
Refscraftcms.comgithub.comnvd.nist.gov
Federal remediation due 2026-04-03
CVE-2026-1281
2026-01-29
Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability
Ivanti

Ivanti Endpoint Manager Mobile (EPMM) contains a code injection vulnerability that could allow attackers to achieve unauthenticated remote code execution.

CWE-94 · Code injection
RefsPlease adhere to Ivanti's guidelines to assess exposure and mitigate risks. Check for signs of potential compromise on all internet accessible Ivanti products affected by this vulnerability. Apply any final mitigations provided by the vendor as soon as possible. For more information please: seesupport.mobileiron.comsupport.mobileiron.comnvd.nist.gov
Federal remediation due 2026-02-01
CVE-2026-20045
2026-01-21
Cisco Unified Communications Products Code Injection Vulnerability
Cisco / Unified Communications Manager

Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P), Cisco Unity Connection, and Cisco Webex Calling Dedicated Instance contain a code injection vulnerability that could allow the attacker to obtain user-level access to the underlying operating system and then elevate privileges to root.

CWE-94 · Code injection
Refssec.cloudapps.cisco.comnvd.nist.gov
Federal remediation due 2026-02-11
CVE-2025-37164
2026-01-07
Hewlett Packard Enterprise (HPE) OneView Code Injection Vulnerability
Hewlett Packard Enterprise (HPE)

Hewlett Packard Enterprise (HPE) OneView contains a code injection vulnerability that allows a remote unauthenticated user to perform remote code execution.

CWE-94 · Code injection
Refssupport.hpe.comnvd.nist.gov
Federal remediation due 2026-01-28
CVE-2009-0556
2026-01-07
Microsoft Office PowerPoint Code Injection Vulnerability
Microsoft

Microsoft Office PowerPoint contains a code injection vulnerability that allows remote attackers to execute arbitrary code via a PowerPoint file with an OutlineTextRefAtom containing an invalid index value that triggers memory corruption.

CWE-94 · Code injection
Refslearn.microsoft.comnvd.nist.gov
Federal remediation due 2026-01-28
CVE-2025-6204
2025-10-28
Dassault Systèmes DELMIA Apriso Code Injection Vulnerability
Dassault Systèmes

Dassault Systèmes DELMIA Apriso contains a code injection vulnerability that could allow an attacker to execute arbitrary code.

CWE-94 · Code injection
Refs3ds.comnvd.nist.gov
Federal remediation due 2025-11-18
CVE-2025-49704
2025-07-22
Microsoft SharePoint Code Injection VulnerabilityRansomware
Microsoft

Microsoft SharePoint contains a code injection vulnerability that could allow an authorized attacker to execute code over a network. This vulnerability could be chained with CVE-2025-49706. CVE-2025-53770 is a patch bypass for CVE-2025-49704, and the updates for CVE-2025-53770 include more robust protection than those for CVE-2025-49704.

CWE-94 · Code injection
RefsCISA Mitigation Instructionsmicrosoft.commsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-07-23
CVE-2024-56145
2025-06-02
Craft CMS Code Injection Vulnerability
Craft CMS

Craft CMS contains a code injection vulnerability. Users with affected versions are vulnerable to remote code execution if their php.ini configuration has `register_argc_argv` enabled.

CWE-94 · Code injection
Refsgithub.comnvd.nist.gov
Federal remediation due 2025-06-23
CVE-2025-4428
2025-05-19
Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability
Ivanti

Ivanti Endpoint Manager Mobile (EPMM) contains a code injection vulnerability in the API component that allows an authenticated attacker to remotely execute arbitrary code via crafted API requests. This vulnerability results from an insecure implementation of the Hibernate Validator open-source library, as represented by CVE-2025-35036.

CWE-94 · Code injection
Refsforums.ivanti.comnvd.nist.gov
Federal remediation due 2025-06-09
CVE-2025-1976
2025-04-28
Broadcom Brocade Fabric OS Code Injection Vulnerability
Broadcom

Broadcom Brocade Fabric OS contains a code injection vulnerability that allows a local user with administrative privileges to execute arbitrary code with full root privileges.

CWE-94 · Code injection
Refssupport.broadcom.comnvd.nist.gov
Federal remediation due 2025-05-19
CVE-2025-23209
2025-02-20
Craft CMS Code Injection Vulnerability
Craft CMS

Craft CMS contains a code injection vulnerability caused by improper validation of the database backup path, ultimately enabling remote code execution.

CWE-94 · Code injection
Refsgithub.comnvd.nist.gov
Federal remediation due 2025-03-13
CVE-2022-24816
2024-06-26
OSGeo GeoServer JAI-EXT Code Injection Vulnerability
OSGeo

OSGeo GeoServer JAI-EXT contains a code injection vulnerability that, when programs use jt-jiffle and allow Jiffle script to be provided via network request, could allow remote code execution.

CWE-94 · Code injection
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. The patched JAI-EXT is version 1.1.22nvd.nist.gov
Federal remediation due 2024-07-17
CVE-2024-20359
2024-04-24
Cisco ASA and FTD Privilege Escalation Vulnerability
Cisco / Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD)

Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) contain a privilege escalation vulnerability that can allow local privilege escalation from Administrator to root.

CWE-94 · Code injection
Refssec.cloudapps.cisco.comnvd.nist.gov
Federal remediation due 2024-05-01
CVE-2023-24955
2024-03-26
Microsoft SharePoint Server Code Injection VulnerabilityRansomware
Microsoft

Microsoft SharePoint Server contains a code injection vulnerability that allows an authenticated attacker with Site Owner privileges to execute code remotely.

CWE-94 · Code injection
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2024-04-16
CVE-2021-44529
2024-03-25
Ivanti Endpoint Manager Cloud Service Appliance (EPM CSA) Code Injection Vulnerability Ransomware
Ivanti

Ivanti Endpoint Manager Cloud Service Appliance (EPM CSA) contains a code injection vulnerability that allows an unauthenticated user to execute malicious code with limited permissions (nobody).

CWE-94 · Code injection
Refsforums.ivanti.comnvd.nist.gov
Federal remediation due 2024-04-15
CVE-2024-21351
2024-02-13
Microsoft Windows SmartScreen Security Feature Bypass Vulnerability
Microsoft

Microsoft Windows SmartScreen contains a security feature bypass vulnerability that allows an attacker to bypass the SmartScreen user experience and inject code to potentially gain code execution, which could lead to some data exposure, lack of system availability, or both.

CWE-94 · Code injection
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2024-03-05
CVE-2023-6548
2024-01-17
Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability
Citrix

Citrix NetScaler ADC and NetScaler Gateway contain a code injection vulnerability that allows for authenticated remote code execution on the management interface with access to NSIP, CLIP, or SNIP.

CWE-94 · Code injection
Refssupport.citrix.comnvd.nist.gov
Federal remediation due 2024-01-24
CVE-2018-14667
2023-09-28
Red Hat JBoss RichFaces Framework Expression Language Injection Vulnerability
Red Hat

Red Hat JBoss RichFaces Framework contains an expression language injection vulnerability via the UserResource resource. A remote, unauthenticated attacker could exploit this vulnerability to execute malicious code using a chain of Java serialized objects via org.ajax4jsf.resource.UserResource$UriData.

CWE-94 · Code injection
Refsbugzilla.redhat.comnvd.nist.gov
Federal remediation due 2023-10-19
CVE-2023-33246
2023-09-06
Apache RocketMQ Command Execution Vulnerability
Apache

Several components of Apache RocketMQ, including NameServer, Broker, and Controller, are exposed to the extranet and lack permission verification. An attacker can exploit this vulnerability by using the update configuration function to execute commands as the system users that RocketMQ is running as or achieve the same effect by forging the RocketMQ protocol content.

CWE-94 · Code injection
Refslists.apache.orgnvd.nist.gov
Federal remediation due 2023-09-27
CVE-2023-3519
2023-07-19
Citrix NetScaler ADC and NetScaler Gateway Code Injection VulnerabilityRansomware
Citrix

Citrix NetScaler ADC and NetScaler Gateway contains a code injection vulnerability that allows for unauthenticated remote code execution.

CWE-94 · Code injection
Refssupport.citrix.comnvd.nist.gov
Federal remediation due 2023-08-09
CVE-2023-25717
2023-05-12
Multiple Ruckus Wireless Products CSRF and RCE Vulnerability
Ruckus Wireless / Multiple Products

Ruckus Wireless Access Point (AP) software contains an unspecified vulnerability in the web services component. If the web services component is enabled on the AP, an attacker can perform cross-site request forgery (CSRF) or remote code execution (RCE). This vulnerability impacts Ruckus ZoneDirector, SmartZone, and Solo APs.

CWE-94 · Code injection
Refssupport.ruckuswireless.comnvd.nist.gov
Federal remediation due 2023-06-02
CVE-2023-29492
2023-04-13
Novi Survey Insecure Deserialization Vulnerability
Novi Survey

Novi Survey contains an insecure deserialization vulnerability that allows remote attackers to execute code on the server in the context of the service account.

CWE-94 · Code injection
Refsnovisurvey.netnvd.nist.gov
Federal remediation due 2023-05-04
CVE-2017-7494
2023-03-30
Samba Remote Code Execution VulnerabilityRansomware
Samba

Samba contains a remote code execution vulnerability, allowing a malicious client to upload a shared library to a writable share and then cause the server to load and execute it.

CWE-94 · Code injection
Refssamba.orgnvd.nist.gov
Federal remediation due 2023-04-20
CVE-2013-3163
2023-03-30
Microsoft Internet Explorer Memory Corruption Vulnerability
Microsoft

Microsoft Internet Explorer contains a memory corruption vulnerability that allows remote attackers to execute code or cause a denial of service via a crafted website.

CWE-94 · Code injection
Refslearn.microsoft.comnvd.nist.gov
Federal remediation due 2023-04-20
CVE-2021-39144
2023-03-10
XStream Remote Code Execution Vulnerability
XStream

XStream contains a remote code execution vulnerability that allows an attacker to manipulate the processed input stream and replace or inject objects that result in the execution of a local command on the server. This vulnerability can affect multiple products, including but not limited to VMware Cloud Foundation.

CWE-94 · Code injectionCWE-502 · Deserialization of untrusted data
Refsvmware.comnvd.nist.gov
Federal remediation due 2023-03-31
CVE-2022-41223
2023-02-21
Mitel MiVoice Connect Code Injection VulnerabilityRansomware
Mitel

The Director component in Mitel MiVoice Connect allows an authenticated attacker with internal network access to execute code within the context of the application.

CWE-94 · Code injection
Refsmitel.comnvd.nist.gov
Federal remediation due 2023-03-14
CVE-2022-3236
2022-09-23
Sophos Firewall Code Injection Vulnerability
Sophos

A code injection vulnerability in the User Portal and Webadmin of Sophos Firewall allows for remote code execution.

CWE-94 · Code injection
Refssophos.comnvd.nist.gov
Federal remediation due 2022-10-14
CVE-2022-22963
2022-08-25
VMware Tanzu Spring Cloud Function Remote Code Execution Vulnerability
VMware Tanzu

When using routing functionality in VMware Tanzu's Spring Cloud Function, it is possible for a user to provide a specially crafted SpEL as a routing-expression that may result in remote code execution and access to local resources.

CWE-94 · Code injection
Refstanzu.vmware.comnvd.nist.gov
Federal remediation due 2022-09-15
CVE-2009-1862
2022-06-08
Adobe Acrobat and Reader, Flash Player Unspecified Vulnerability
Adobe

Adobe Acrobat and Reader and Adobe Flash Player allows remote attackers to execute code or cause denial-of-service (DoS).

CWE-94 · Code injection
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2009-0557
2022-06-08
Microsoft Office Object Record Corruption Vulnerability
Microsoft

Microsoft Office contains an object record corruption vulnerability that allows remote attackers to execute code via a crafted Excel file with a malformed record object.

CWE-94 · Code injection
Refsnvd.nist.gov
Federal remediation due 2022-06-22
CVE-2014-4148
2022-05-25
Microsoft Windows Remote Code Execution Vulnerability
Microsoft

A remote code execution vulnerability exists when the Windows kernel-mode driver improperly handles TrueType fonts.

CWE-94 · Code injection
Refsnvd.nist.gov
Federal remediation due 2022-06-15
CVE-2022-22947
2022-05-16
VMware Spring Cloud Gateway Code Injection Vulnerability
VMware

Spring Cloud Gateway applications are vulnerable to a code injection attack when the Gateway Actuator endpoint is enabled, exposed and unsecured.

CWE-94 · Code injection
Refsnvd.nist.gov
Federal remediation due 2022-06-06
CVE-2022-22954
2022-04-14
VMware Workspace ONE Access and Identity Manager Server-Side Template Injection VulnerabilityRansomware
VMware

VMware Workspace ONE Access and Identity Manager allow for remote code execution due to server-side template injection.

CWE-94 · Code injection
Refsnvd.nist.gov
Federal remediation due 2022-05-05
CVE-2022-22965
2022-04-04
Spring Framework JDK 9+ Remote Code Execution Vulnerability
VMware

Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding.

CWE-94 · Code injection
Refsnvd.nist.gov
Federal remediation due 2022-04-25
CVE-2018-1273
2022-03-25
VMware Tanzu Spring Data Commons Property Binder VulnerabilityRansomware
VMware Tanzu

Spring Data Commons contains a property binder vulnerability which can allow an attacker to perform remote code execution.

CWE-94 · Code injection
Refsnvd.nist.gov
Federal remediation due 2022-04-15
CVE-2014-6287
2022-03-25
Rejetto HTTP File Server (HFS) Remote Code Execution Vulnerability
Rejetto

The findMacroMarker function in parserLib.pas in Rejetto HTTP File Server (HFS or HttpFileServer) allows remote attackers to execute arbitrary programs.

CWE-94 · Code injection
Refsnvd.nist.gov
Federal remediation due 2022-04-15
CVE-2013-4810
2022-03-25
HP Multiple Products Remote Code Execution Vulnerability
Hewlett Packard (HP) / ProCurve Manager (PCM), PCM+, Identity Driven Manager (IDM), and Application Lifecycle Management

HP ProCurve Manager (PCM), PCM+, Identity Driven Manager (IDM), and Application Lifecycle Management allow remote attackers to execute arbitrary code via a marshalled object to (1) EJBInvokerServlet or (2) JMXInvokerServlet.

CWE-94 · Code injection
Refsnvd.nist.gov
Federal remediation due 2022-04-15
CVE-2009-1151
2022-03-25
phpMyAdmin Remote Code Execution Vulnerability
phpMyAdmin

Setup script used to generate configuration can be fooled using a crafted POST request to include arbitrary PHP code in generated configuration file.

CWE-94 · Code injection
Refsnvd.nist.gov
Federal remediation due 2022-04-15
Prev1 / 2Next